Dear Student,

in order to attend in one of our practical courses in the upcoming winter term 2025/26, you have to solve a small qualification challenge and register yourself on this site. Our practical courses for the upcoming term are:

Web Application Security

In this course, we will focus on teaching classical and new security vulnerabilities in web applications: for example, injection vulnerabilities, XSS, CSRF, and many more. At the end of this class you will test your knowledge by analyzing the codebase of various frequently-used TUM tools, like TUMLive, NavigaTUM, as well as other open source projects.

Update 28.01. 17:55: Registration is now fixed! If you got "flag is not correct, dig deeper" before, re-submit your application. Go to course registration

Rootkit Programming

In this course, we will teach you various methods of gaining persistent root access to a system. If you are interested in low-level programming inside the Linux kernel, messing with libc and the hypervisor, this course is for you! Go to course registration